Article

Category: Expertise strategy

A guide to NIS2 & DORA implementation and compliance

Here, emagine's cybersecurity expert Trine Øksnebjerg explores the lessons learned since DORA’s introduction in January 2023 and ahead of its roll-out in January 2025.  

Navigating the complexities of new regulations can be challenging for any organisation, especially when compliance involves significant operational changes and a re-evaluation of risk at the highest levels.

During a recent webinar hosted by Niall Kitson of TechCentral.ie, industry experts, including Trine Øksnebjerg, Consultant Director at emagine, alongside representatives from the Irish Institute of Directors (IoD), PwC, and Integrity360, explored the intricacies of the Digital Operations Resilience Act (DORA) and the NIS2 directive.

The discussion underscored the crucial role of boardroom decision-making in achieving compliance and building resilience.

 

The Evolution of DORA

Introduced in January 2023, DORA aims to enhance the digital resilience of the financial sector. Organisations face a critical deadline of January 17, 2025, to achieve compliance. This has spurred a flurry of activity, from recruiting the right talent to refining processes. The recent introduction of the AI Act, with full compliance expected by 2026, adds yet another layer of regulatory complexity.

managed teams

Progress varies across organisations. During the webinar, a participant poll revealed that:

 

  • One-third of organisations are partially compliant.
  • Another third are in the planning stages.
  • The remaining third significantly lag behind, raising concerns about their ability to meet deadlines.

While some progress is evident, non-compliance carries significant risks, including financial penalties, of up to 2% of annual worldwide turnover, and heightened vulnerability to cyberattacks.

 

Managing risk

Compliance with DORA and NIS2 fundamentally revolves around understanding and managing risk. Unfortunately, many executives struggle to grasp the full scope of these regulations, often delegating responsibility to IT or cybersecurity teams. According to Bill McCluggage of the IoD, 84% of executives fall into this category, a strategy that often conflicts with broader business processes.

Successful compliance strategies require a more integrated approach, starting with a shift in the Chief Security Officer (CSO) role. CSOs must bridge the gap between technical jargon and business implications, translating risks into terms the board can understand, such as financial impact or operational disruption.


 

  CSOs must bridge the gap between technical jargon and business implications, translating risks into terms the board can understand, such as financial impact or operational disruption.

 


The Evolving Role of the Chief Security Officer

As organisations recognise the strategic importance of the CSO, their placement within the corporate hierarchy is shifting. Whether reporting to the Chief Information Officer (CIO), Data Protection Officer (DPO), or directly to the board, the CSO’s role is to align security measures with business objectives.

 

Effective CSOs focus on:

 

  • Communicating the business impact of technical issues in plain language.
  • Aligning security measures with the organisation’s risk appetite and operational priorities.
  • Building sustainable compliance frameworks integrated with existing processes.

That leads on to building a sustainable approach to compliance. It’s important to remember that compliance is not a one time task, it’s a process that needs continuous attention. Organisations must:

 

  • Tailor compliance strategies to their size, industry, and maturity.
  • Leverage existing frameworks rather than starting from scratch.
  • Ensure board members and managers understand the digital landscape to make informed decisions.

Mature organisations, accustomed to regulatory environments, often have a head start. However, others can succeed by balancing risk control with business efficiency and fostering a culture of accountability at the top. Buy in can be a challenge, but it’s extremely important if you want to create organisational synergy.

 

Collaboration

The journey to compliance extends beyond individual organisations. Engaging with regulators fosters a two-way dialogue, ensuring smoother rollouts and better alignment with regulatory expectations. For example, financial institutions in Denmark exemplify effective collaboration with regulators.

AI compliance presents a similar challenge. While a quarter of businesses have a roadmap, most lack actionable strategies. Regulations like the AI Act aim to create a more secure European digital ecosystem, benefiting organisations, stakeholders, and investors.By understanding and embracing compliance requirements, organisations can turn regulatory challenges into opportunities for growth and resilience.

Ready to find out more?

Ask us how we can help you succeed.

Blog

Read more

left-arrow
right-arrow

A corporate leader ready to give a presentation to their team
Expertise strategy

emagine Leadership Programme

emagine is committed to continuing the trajectory of sustainable business growth that the firm has experienced in recent years. We have implemented various strategic initiatives that will help to enhance our offering over time. One of them is our Leadership Programme that we launched last year.

Expertise strategy

The rise of sustainability-linked loans

In this article, Jesper Diget, CPO at emagine, explores how linking sustainability initiatives to the bottom line is reshaping business strategies.

Expertise strategy

How to keep teams productive in the hybrid working era

Martin Hartley, CCO of emagine, shares insights on successful hybrid working through balancing in-person collaboration, creating team synergy through the use of virtual tools, and supporting individual productivity patterns.

Expertise strategy
Risk & Compliance

A guide to NIS2 & DORA implementation and compliance

emagine’s cybersecurity expert Trine Øksnebjerg explores the lessons learned since DORA’s introduction in January 2023 and ahead of its roll-out in January 2025.

Expertise strategy
Trends

Business trend in 2025: Urgency for CEOs to take back IT ownership to drive growth

Dive into the evolving role of technology in business growth and explore the strategies leaders are using to balance outsourcing and insourcing, all while navigating the challenges of a dynamic, tech-driven landscape.

Expertise strategy

Possibilities and risks for Germany as a modern tech nation

This article explores Germany’s digital challenges, where gaps in skills and tech adoption risk its global competitiveness despite a strong industrial base and top technical universities.

Expertise strategy
Strategy, change & transformation

Using AI to streamline resource allocation

As global digital transformation spending heads toward $3.9 trillion by 2027, this article explores an AI resource allocation case from emagine HQ, other AI optimizations, and common challenges.

Data & Analytics
Expertise strategy

AI and the Ethics Tango

Discover the evolving relationship between humans and advanced technologies. Our article delves into the ethical considerations and risks associated with modern machines, highlighting how the complexity of today’s tech goes beyond simple utility.

Expertise strategy
Risk & Compliance

How to enhance cybersecurity measures

Enhance cybersecurity measures with updated systems, training, and secure remote work practices to protect your business. Explore here.

Expertise strategy
Training

The future of workplace upskilling and training

This article examines the importance of workplace upskilling, current trends, and how technological advancements will shape the future of workplace learning.

The agile transformation of a large enterprise is a complex process that requires profound changes in leadership, structure, and corporate culture.
Expertise strategy
Projects & Implementation
Tech & Development

Developments of AI in Project Management

This article discusses how the integration of artificial intelligence (AI) and machine learning (ML) into project management is driving a cultural shift towards innovation and agility within organizations.

Consultants assessing regulatory documents
Expertise strategy
Risk & Compliance

What is NIS 2 and how should businesses prepare?

With increasing cyberattacks, organizations must prioritize compliance, improve cyber hygiene, and implement standards like ISO/IEC 27001 to build resilience and reduce risks. Learn what NIS 2 is and how businesses should prepare for this comprehensive European cybersecurity directive.

Expertise strategy
Risk & Compliance

The future of preventing Financial Economic Crime and the importance of KYC

Understanding KYC protocols, AML regulations, and broader financial crime trends is vital for maintaining financial integrity. This article discusses key developments in compliance, KYC, and AML.

Data & Analytics
Expertise strategy
Tech & Development

New EU Act on Artificial Intelligence

Learn the ins and outs of the world’s first comprehensive legal framework on AI, the new EU AI Act and its anticipated impact on businesses.

Illustration of a solid chain with code written in the metal
Expertise strategy
Risk & Compliance

Digital Operational Resilience Act (DORA)

Here’s everything you need to know about the Digital Operational Resilience Act (DORA) which will apply from 17th January 2025.

Expertise strategy
Risk & Compliance

Proposed Code of Practice on cybersecurity governance

Explore the UK Government’s latest draft on cybersecurity governance Code of Practice together with emagine’s expert, Trine Øksnebjerg.

A business consultant ready to give a presentation at work.
Expertise strategy
Strategy, change & transformation

Embracing change as an opportunity for growth

In this article, we outline the best practices when it comes to navigating organizational change, including how to tackle challenges and maintain a clear vision when unprecedented issues arise.

Modern business environment with a man and woman in front of window facing a city
Expertise strategy

People-centric leadership: Tips for fostering digital wellbeing at work

This article equips team leaders with strategies for fostering digital wellbeing in the workplace, empowering them to guide their teams through the challenges that come with prolonged screen-time, hybrid work, and other factors of digitalisation in a modern workplace.

Expertise strategy
Strategy, change & transformation

Empower your teams through strategic thinking

This article considers why strategic thinking is crucial to effective leadership and explores some practical ways for leaders at all levels to develop this skill.

Consultants and advisors i an office space seen from above
Expertise strategy
Trends

Insights into 2024 business trends

With 2023 behind us and eyes fixed firmly on what opportunities 2024 will bring, Gillian Whelan, Country Manager of emagine Ireland, outlines five trends that will affect businesses this year.

Female consultant standing and writing on a desk
Expertise strategy
Risk & Compliance

Steering AML challenges: Embracing technology for a seamless future

Discover how to navigate AML challenges with automated processes and fortify your organization’s integrity and operations.

Bestshoring
Data & Analytics
Expertise strategy

Poland: An AI Centre of Excellence

AI is reshaping industries globally, and Poland’s thriving ecosystem positions it as a leader in AI development. emagine’s Cloud Administrator explores why Poland is a powerhouse in AI.

Business consultants conducting a meeting
Expertise strategy
Managed Teams & Managed Service
Staff augmentation

Managed Resourcing Services vs. Traditional Staff Augmentation

In the ever-evolving landscape of business operations, companies are constantly looking for ways to optimise their workforce strategies. Explore the two popular approaches that have gained prominence: Managed Resourcing Services (MRS) and traditional staff augmentation.

Expertise strategy
Risk & Compliance

Programme Governance: Top tips for success

In this article, we share some tips to navigate the intricate landscape of orchestrating interconnected projects and activities within a strategic framework.

Project manager at a meeting with his team.
Expertise strategy
Projects & Implementation

What has changed in PMBOK 7?

PMBOK is regularly updated to accommodate new trends, best practices, and developments in the field. How much has it changed between editions?

A team leader in front of her team
Expertise strategy
Projects & Implementation

The importance of leadership skills in a Project Manager

Behind every successful project lies a competent and visionary leader. In this article, we delve into the undeniable importance of leadership within project management and explore how effective leadership can be the driving force behind achieving project objectives.

Advisory & Solutions
Expertise strategy
Strategy, change & transformation

Building your PMO – Influence and Position

There are a number of things to consider when introducing a PMO. The Project Management Office fails far too often because of the wrong approach, and it can only be successful in the long term if fundamental questions are considered at an early stage.

Doug Collyer is Country Manager in UK
Expertise strategy
Strategy, change & transformation

The Nordic way of working: how does it help emagine consultants optimise their clients’ operations and boost profits?

emagine’s Nordic way of working embraces different perspectives and approaches to solve challenges and power progress among our consultants. Learn how our experts and Nordic work style can optimise our client’s operations and profitability.

thre people in a amicable meeting
Expertise strategy
Staff augmentation

Good onboarding: Setting your external workforce up for success

Enabling new consultants seamlessly integrate into your organisation is critical to their success. To ensure a smooth onboarding process, it is essential to help them get started immediately. This article will guide you through the most critical aspects of getting a consultant to start delivering from day one.

External consultants at a meeting in the office.
Expertise strategy
Staff augmentation

4 signs you need an IT consultant

Are you wondering if your company could benefit from hiring an IT consultant? This article outlines four common signs that indicate you may need external expertise to manage change, mitigate risk, or meet tight deadlines.

Bestshoring
Expertise strategy
Nearshoring
Publications

The Ultimate Guide to Nearshoring

Get our ultimate guide on how your IT organization can tap into Polish IT talent. Download the e-book and read condensed knowledge, facts and cases about Nearshoring based on our 12 years experience. Download now and get it free.

Expertise strategy
Tech & Development

The Complete Guide to Migrating Monolithic Applications to Microservices on the Cloud

As organizations strive to deliver high-quality software and services at scale, many are turning to a microservices architecture as a way to break down monolithic applications into smaller, more manageable components.

Modern business environment with a man and woman in front of window facing a city
Expertise strategy
Staff augmentation

The Science behind hiring the top 10%

As a business and technology consulting firm, we live of our ability to recruit the very top talent for our business. In this piece, I would like to share our thoughts behind the approach we on emagine UK. We call it: The science behind hiring the top 10%.

Expertise strategy
Strategy, change & transformation

People hate change, so how do you best implement it?

Bringing in new technology, individuals, or new teams to work on a key project can feel like a threat to existing staff – but it doesn’t have to be that way if you manage change positively.

Expertise strategy
Strategy, change & transformation

Key Success And Failure Factors Of The PMO

In this article, we will delve into Project Management Office (PMO) overview, and we will help you decide if it may be convenient for your team to have a PMO.

IT professionals outside engaging in conversation
Bestshoring
Expertise strategy
Nearshoring

Poland, the IT hub of Europe?

Poland has become a European talent hub in technology and engineering, and European companies leverage polish talent coding skills for nearshoring projects. Learn why.

Business woman talking to two colleagues
Expertise strategy
Staff augmentation

Team extension: How to hire external consultants successfully

Hiring external consultants isn’t something you should treat lightly. Learn the most satisfactory way to leverage experts in your organisation. In this article, Senior Account Manager Jytte Raahede shares her tips on onboarding consultants successfully.

Four professionals sitting together in a positive meeting smiling
Bestshoring
Expertise strategy
Nearshoring

A short guide to succeeding with Nearshoring

For many companies, the decision to go nearshore is not an easy one. It’s a decision that requires a great deal of consideration – we know that because several of our current clients were also reluctant to go nearshore at first. Learn our tips on how to get it right.